Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 03:55:11.749 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 03:59:21.961 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51722 10 6452 1 2025-08-12 04:00:22.387 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33996 10 6452 1 2025-08-12 03:57:11.753 00:05:00.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:01:22.750 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33082 10 6452 1 2025-08-12 04:01:50.676 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:01:50.703 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:01:50.698 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:01:50.540 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:01:50.593 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:02:23.150 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55202 10 6452 1 2025-08-12 04:03:23.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-08-12 04:04:23.961 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-08-12 04:01:11.753 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:05:24.367 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:53128 10 6452 1 2025-08-12 04:06:24.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 10 6452 1 2025-08-12 04:06:51.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:06:51.069 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:06:50.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:06:50.583 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:06:51.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:03:11.757 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:07:25.145 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39928 10 6452 1 2025-08-12 04:08:25.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 10 6452 1 2025-08-12 04:09:25.919 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40468 10 6452 1 2025-08-12 04:10:26.287 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 12 10365 1 2025-08-12 04:07:11.754 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:11:26.772 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53342 10 6452 1 2025-08-12 04:11:50.882 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:11:51.010 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:11:50.918 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:11:50.883 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:11:50.966 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:12:27.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38966 10 6452 1 2025-08-12 04:09:11.758 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:13:27.544 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58980 10 6452 1 2025-08-12 04:14:27.944 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-08-12 04:15:28.366 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36416 10 6452 1 2025-08-12 04:16:28.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54368 10 6452 1 2025-08-12 04:16:50.924 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:16:51.184 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:16:51.062 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:16:50.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:16:51.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:13:11.757 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:17:29.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42424 10 6452 1 2025-08-12 04:18:29.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41148 10 6452 1 2025-08-12 04:15:11.759 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:19:29.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42096 10 6452 1 2025-08-12 04:20:30.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-08-12 04:21:30.801 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37598 10 6452 1 2025-08-12 04:21:51.408 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:21:51.137 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:21:51.155 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:21:51.100 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:21:51.325 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:22:31.206 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41900 10 6452 1 2025-08-12 04:19:11.758 00:05:00.670 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:23:31.605 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58216 10 6452 1 2025-08-12 04:24:32.012 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:35372 12 10367 1 2025-08-12 04:21:11.760 00:05:00.665 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:25:32.450 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-08-12 04:26:32.855 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:52830 10 6452 1 2025-08-12 04:26:51.222 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:26:51.226 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:26:51.222 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:26:51.294 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:26:51.376 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:27:33.234 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-08-12 04:28:33.634 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:45720 10 6452 1 2025-08-12 04:25:11.758 00:05:00.670 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:29:34.093 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 12 10367 1 2025-08-12 04:30:34.572 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6452 1 2025-08-12 04:27:11.761 00:05:00.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:31:34.987 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-08-12 04:31:51.479 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:31:51.527 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:31:51.428 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:31:51.475 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:31:51.558 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:32:35.351 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-08-12 04:33:35.711 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43456 10 6452 1 2025-08-12 04:34:36.116 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-08-12 04:31:11.759 00:05:00.671 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:35:36.534 00:00:20.870 TCP 1.101.0.1:3000 -> 23.104.0.1:45144 10 6452 1 2025-08-12 04:36:51.789 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:36:51.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:36:51.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:36:51.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:36:51.878 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:36:47.455 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34292 10 6452 1 2025-08-12 04:33:11.762 00:05:00.665 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:37:47.855 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-08-12 04:38:48.274 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-08-12 04:39:48.674 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 10 6452 1 2025-08-12 04:40:49.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47752 10 6452 1 2025-08-12 04:37:11.760 00:05:00.671 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:41:51.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:41:51.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:41:51.634 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:41:51.267 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:41:51.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:41:49.439 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41378 10 6452 1 2025-08-12 04:42:49.844 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-08-12 04:39:11.763 00:05:00.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:43:50.228 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35616 10 6452 1 2025-08-12 04:44:50.631 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-08-12 04:45:50.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36544 10 6452 1 2025-08-12 04:46:51.818 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:46:51.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:46:51.740 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:46:51.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:46:51.736 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:46:51.398 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58800 10 6452 1 2025-08-12 04:43:11.760 00:05:00.672 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:47:51.789 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39354 10 6452 1 2025-08-12 04:48:52.150 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38866 10 6452 1 2025-08-12 04:45:11.765 00:05:00.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:49:52.558 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6452 1 2025-08-12 04:50:52.958 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:54946 10 6452 1 2025-08-12 04:51:51.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:51:51.922 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:51:51.922 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:51:51.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:51:52.005 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:51:53.462 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33114 10 6452 1 2025-08-12 04:52:53.866 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 10 6452 1 2025-08-12 04:49:11.773 00:05:00.664 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 04:53:54.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45122 10 6452 1 2025-08-12 04:54:54.685 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:33104 12 10365 1 2025-08-12 04:51:11.776 00:05:00.656 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 04:55:55.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-08-12 04:56:51.875 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:56:51.801 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 04:56:51.873 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 04:56:51.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 04:56:51.957 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 04:56:55.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 10 6452 1 2025-08-12 04:57:55.925 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 10 6452 1 Summary: total flows: 139, total bytes: 426204, total packets: 1018, avg bps: 903, avg pps: 0, avg bpp: 418 Time window: 2025-08-12 03:55:11 - 2025-08-12 04:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0017s Wall: 0.0024s flows/second: 58330.0 Runtime: 0.0024s